OPERATIONAL RESILIENCE
Resilience is measured from the outside: what the customer still receives.
The situation
Organisations increasingly deliver services they do not fully operate. Platforms, providers and partners sit inside the value chain, often several layers deep.
Internally, resilience is measured by system availability. Externally, it is judged by whether the service still works. The gap between those two views is where unpleasant surprises live.
The question
How much disruption can this service absorb before it stops being acceptable?
The work
We define critical services from the outside in, then set tolerances for disruption that the executive team is willing to defend.
Dependency mapping follows the service across internal teams, suppliers and their concentration points, including where several critical services quietly rely on the same provider.
Recovery arrangements and severe-but-plausible scenarios are then tested against those tolerances, and the gaps become a prioritised set of decisions rather than a findings list.
The outcome
A clear view of critical services, the disruption they can absorb, and where the organisation is exposed to dependencies it does not control.